Skip to content

[VULN] Security Alert for redis #984

@srm-local-dev-test

Description

@srm-local-dev-test

Alert IDs:

  • a8365af8-3847-49a2-a6cc-9dc93539cc8c

Vulnerabilities in redis

Release: 21st May Release

Total Vulnerabilities: 1


1. CVE-2021-29469

Severity: HIGH (Score: 5.9)

Description:
Node-redis is a Node.js Redis client. Before version 3.1.1, when a client is in monitoring mode, the regex begin used to detected monitor messages could cause exponential backtracking on some strings. This issue could lead to a denial of service. The issue is patched in version 3.1.1.

Reference: https://nvd.nist.gov/vuln/detail/CVE-2021-29469

Alert ID: a8365af8-3847-49a2-a6cc-9dc93539cc8c


Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions